Skip to content
iSec News
  • News
  • Cybercrime
  • Risk
  • Policy
  • Privacy
  • Research
  • Cloud
  • Insurance
  • LinkedIn
  • Facebook
  • Amazon Q Developer flaw let malicious repos run code and expose cloud credentials

    Cloud, News, Research, Vulnerabilities
    June 27, 2026

    Amazon Q Developer had a flaw that let a malicious repository run code and expose cloud credentials, according to Wiz Research. AWS says the issue is fixed, and customers are being urged to update affected plugins and language servers.

    Amazon Q Developer flaw let malicious repos run code and expose cloud credentials

Latest NEWS

  • macOS flaw let standard users disable CrowdStrike and Kandji tools, researchers say

    June 26, 2026
    macOS flaw let standard users disable CrowdStrike and Kandji tools, researchers say

  • Mirage2FA phishing kit uses HTML smuggling to target Microsoft 365 users

    June 26, 2026
    Mirage2FA phishing kit uses HTML smuggling to target Microsoft 365 users

  • Microsoft flags photo ZIP phishing campaign targeting hotels in Europe and Asia

    June 26, 2026
    Microsoft flags photo ZIP phishing campaign targeting hotels in Europe and Asia

  • Xsolis says phishing attack exposed data of 1.4 million people

    June 26, 2026
    Xsolis says phishing attack exposed data of 1.4 million people

  • DraftKings hacker ‘Snoopy’ gets 18 months in prison

    June 26, 2026
    DraftKings hacker ‘Snoopy’ gets 18 months in prison

  • Hacker Threw MacBook Air in River after Breach that Exposed 33.7 Million Accounts

    Cybercrime, News, Privacy, Vendors

    ·

    January 4, 2026
    Hacker Threw MacBook Air in River after Breach that Exposed 33.7 Million Accounts
  • PS5 BootROM keys leaked in late 2025 expose unpatchable hardware secrets

    News, Research, Vulnerabilities

    ·

    January 3, 2026
    PS5 BootROM keys leaked in late 2025 expose unpatchable hardware secrets
  • Unit 42 analysis finds VVS stealer targets Discord users and exfiltrates tokens and browser data

    Cybercrime, News, Research, Vulnerabilities

    ·

    January 3, 2026
    Unit 42 analysis finds VVS stealer targets Discord users and exfiltrates tokens and browser data
  • Handala targeted Telegram accounts of two Israeli officials

    Cybercrime, News, Research

    ·

    January 3, 2026
    Handala targeted Telegram accounts of two Israeli officials
  • RondoDox botnet exploited React2Shell to enroll IoT devices and web apps

    Cybercrime, News, Vulnerabilities

    ·

    January 2, 2026
    RondoDox botnet exploited React2Shell to enroll IoT devices and web apps
Loading…Load More
iSec News
  • LinkedIn
  • Facebook
  • About
  • Editorial Policy
  • Privacy
  • Contact